CVE 9.3 CRITICAL

Anyscale Ray v2.52.0 Token Authentication Disabled by Default Insecure Configuration_CVE-2025-34351

9.3 / 10
CRITICAL
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Description

Anyscale Ray 2.52.0 contains an insecure default configuration in which token-based authentication for Ray management interfaces (including the dashboard and Jobs API) is disabled unless explicitly enabled by setting RAY_AUTH_MODE=token. In the default unauthenticated state, a remote attacker with network access to these interfaces can submit jobs and execute arbitrary code on the Ray cluster. NOTE: The vendor plans to enable token authentication by default in a future release. They recommend enabling token authentication to protect your cluster from unauthorized access.

AI Analysis

Insecure default configuration allows remote attackers to execute arbitrary code on the Ray cluster by submitting jobs through management interfaces without authentication.

Basic Information

ID CVE-2025-34351
Source VulnCheck
Published Nov 27, 2025 at 02:45

Affected Product

Vendor The Ray Team
Product Anyscale Ray
Version 2.52.0
Affected Versions The Ray Team Anyscale Ray 2.52.0

CWE Classification

AI Assessment

AI Score 9.3 / 10
AI Severity Critical
Vendor Anyscale
Product Anyscale Ray
Version 2.52.0

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.